Passive network monitoring system
First Claim
1. A network monitoring system, comprising:
- a database;
at least one monitoring circuit coupled to a network along which network traffic flows in a form of packets, at least one monitoring circuit programmed to perform the steps of;
receiving a packet communicated along the network;
determining whether data in the packet satisfies a rule set; and
responsive to determining that data in the packet satisfies a rule set, copying information relating to the packet to be stored into the database; and
circuitry for querying the information communicated by the at least one monitoring circuit to the database to identify an irregularity in the network traffic.
10 Assignments
0 Petitions
Accused Products
Abstract
A network monitoring system (10). The system comprises a database (32) and at least one monitoring circuit (36) coupled to a network (20). Network traffic flows along the network in a form of packets. The at least one monitoring circuit is programmed to perform the steps of receiving a packet communicated along the network and determining whether data in the packet satisfies a rule set. Further, the at least one monitoring circuit is responsive to determining that data in the packet satisfies a rule set by copying information relating to the packet to be stored into the database. The system also comprises circuitry for querying the information communicated by the at least one monitoring circuit to the database to identify an irregularity in the network traffic.
186 Citations
31 Claims
-
1. A network monitoring system, comprising:
-
a database;
at least one monitoring circuit coupled to a network along which network traffic flows in a form of packets, at least one monitoring circuit programmed to perform the steps of;
receiving a packet communicated along the network;
determining whether data in the packet satisfies a rule set; and
responsive to determining that data in the packet satisfies a rule set, copying information relating to the packet to be stored into the database; and
circuitry for querying the information communicated by the at least one monitoring circuit to the database to identify an irregularity in the network traffic. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20)
-
-
21. A method of monitoring a network along which network traffic flows in a form of packets, comprising:
-
receiving a packet communicated along the network;
determining whether data in the packet satisfies a rule set; and
responsive to determining that data in the packet satisfies a rule set, copying information relating to the packet to be stored into a database;
storing a network flow in the database and corresponding to the information; and
querying the information to identify an irregularity in the network traffic. - View Dependent Claims (22, 23, 24, 25, 26, 27, 28, 29, 30, 31)
-
Specification